CVE Published: 13/08/2024 |
CVE Updated: 13/08/2024 |
CVE Year: 2024 Source: Patchstack |
Vendor: HitPay Payment Solutions Pte Ltd |
Product: HitPay Payment Gateway for WooCommerce Status : PUBLISHED
CVE-2024-38747 Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in HitPay Payment Solutions Pte Ltd HitPay Payment Gateway for WooCommerce allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects HitPay Payment Gateway for WooCommerce: from n/a through 4.1.3.
Metrics
CVSS Version: 3.1 |
Base Score: 7.5 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N